The consensus across experts, marketers, and official documentation is that while DKIM signing is a mandatory requirement for Google and Yahoo's new email sending requirements, strict DKIM domain alignment (matching the DKIM signing domain with the 'From:' domain) is *not* explicitly mandated. However, DKIM alignment is overwhelmingly recommended as a 'best practice' because it enhances email deliverability, improves sender reputation, strengthens authentication, and assists in avoiding spam filters. Moreover, while the base DKIM standard does not enforce alignment, DMARC leverages DKIM alignment for validation, indirectly making it important for deliverability when implementing DMARC policies.
8 marketer opinions
While Google and Yahoo require DKIM for email authentication, a strict DKIM domain alignment (matching the DKIM signing domain with the 'From:' domain) is not explicitly mandated. However, it's consistently recommended as a best practice to enhance email deliverability, improve sender reputation, and avoid spam filters. Aligning domains can help distinguish senders, especially those using shared domains.
Marketer view
Email marketer from SparkPost Blog explains that Google and Yahoo require senders to authenticate their emails using DKIM. Domain alignment, while not a strict requirement, is beneficial for deliverability because it improves sender reputation.
12 Dec 2023 - SparkPost Blog
Marketer view
Email marketer from Reddit explains in a Reddit thread that while DKIM is a must, full alignment isn't technically 'required' per se by Google/Yahoo but strongly encouraged for better deliverability rates and avoiding spam filters.
29 Jun 2021 - Reddit
4 expert opinions
Experts generally agree that while DKIM authentication is a requirement for Google and Yahoo's new email sending policies, full DKIM domain alignment is not explicitly mandated across the industry. However, it is widely regarded as a recommended best practice for improving email deliverability and sender reputation. While not a strict rule, domain alignment strengthens authentication, helps prove sender legitimacy, and can positively impact inbox placement.
Expert view
Expert from Email Geeks clarifies that there's no requirement to fully align everything with DKIM, though it's a good practice when feasible. Only the List-Unsubscribe header needs to be signed with DKIM, but it doesn't have to align with the d= domain.
23 Jul 2024 - Email Geeks
Expert view
Expert from Email Geeks states that across the industry, there is no general push to require DKIM alignment, except for a few outliers.
1 Mar 2025 - Email Geeks
5 technical articles
Official documentation from Google, Yahoo, RFC Editor, DMARC.org, and Microsoft Learn indicates that while DKIM signing is mandatory for sending emails and improving deliverability, strict DKIM domain alignment is not explicitly required by Google and Yahoo. However, it's consistently recommended as a best practice, especially when implementing DMARC, to enhance sender reputation, improve inbox placement, and achieve DMARC validation.
Technical article
Documentation from Microsoft Learn highlights the importance of DKIM and DMARC for email authentication in Exchange Online. While it stresses the need for DKIM signing, it frames DKIM alignment as a best practice that significantly contributes to a positive sender reputation and improved deliverability, especially when used in conjunction with DMARC.
15 Apr 2022 - Microsoft Learn
Technical article
Documentation from Yahoo Help Central highlights the importance of DKIM authentication and a valid DMARC record, emphasizing that these are vital for ensuring emails reach the inbox. Yahoo does not explicitly require DKIM domain alignment but focuses on having authentication in place.
28 Jun 2022 - Yahoo Help Central
Do SPF and DKIM records need to be aligned for all email service providers?
Do Yahoo and Gmail require DMARC authentication for senders?
How can a phishing email pass SPF and DKIM authentication checks?
How can I ensure email compliance with Yahoo/Google rules including DMARC, SPF, and FcrDNS?
How do Gmail and Yahoo's new one-click unsubscribe requirements work?
How will Google and Yahoo's new email authentication policies affect senders using shared domains and ESP authentication?